May 18, 2024

TechNewsInsight

Technology/Tech News – Get all the latest news on Technology, Gadgets with reviews, prices, features, highlights and specificatio

[أخبار الأمان]Update to “MS Edge” – Prepare for a Zero-Day Vulnerability Response (Page 1 / 2 pages total): Next security

Microsoft released “Microsoft Edge 114.0.1823.37” on June 2, local time. We’re also preparing an update to eliminate zero-day vulnerabilities, and advocate the use of Enhanced Security Mode to mitigate the impact until release.

This release is an update based on “Chromium 114.0.5735.91” and “114.0.5735.90”. In addition to the 13 vulnerabilities disclosed in Chromium, two vulnerabilities unique to Microsoft Edge have been addressed.

Specifically, we addressed the “CVE-2023-33143” privilege escalation vulnerability and the security function bypassing “CVE-2023-29345”.

The CVSSv3.1 Common Vulnerabilities Scoring System base scores are evaluated as “7.5” and “6.1”, respectively, and the severity is classified as “moderate” and “warning (low)”.

In addition, a zero-day vulnerability “CVE-2023-3079” has been discovered in the “V8” scripting engine, Google has released an update for “Chrome”, but Microsoft is aware that exploits are circulating, and security patches have been announced that they are preparing to

(Next Security – 06/06/2023

Add this entry to Hatena Bookmark

Public relations

Related articles

Revised Anti-Phishing GL – “EV Certificate” has been removed from the requirement
Security Update for Chrome – Fixes the Zero-Day vulnerability
Serious vulnerability in popular WP plugin “Jetpack” – update immediately
Vulnerabilities in Zyxel devices, actively exploited – new vulnerabilities have been discovered
The Zyxel vulnerability was fixed in the products in late May, and has already been targeted
Sending a list containing customer information by mistake to another person with the same surname – Nikato
Missing personal information of survey subjects – NHK
Phishing disguised as “Jalan” – Motivated under the pretext of “Travel Support Funds”
The “Movement Transfer” vulnerability may be exploited by extortion groups
Security vulnerability in TeamPass password management tool

See also  The Wuhan Consensus: Unveils New Efforts for Earth Science Education